Meraki has an odd design philosophy, and maybe it is a greater network design philosophy of blocking as close to the destination device as possible. In your case, blocking outgoing traffic to that IP would achieve the same result as blocking incoming traffic from that IP. But I agree, it is seemingly less secure since the traffic would reach the destination server and just not get returned. Begs the question, what if the traffic is malicious or malformed. If that is the case I wouldn't even want the traffic getting to my server so blocking incoming would be most ideal.
... View more